Posts
4015
Following
731
Followers
1614
"I'm interested in all kinds of astronomy."
[RSS] The Biometric AuthToken Heist: Cracking PINs and Bypassing CE via a Long-Ignored Attack Surface

https://www.darknavy.org/blog/the_biometric_authtoken_heist/
0
0
0
[RSS] Instrumenting QT6 desktop apps with Frida - Part 1

https://blog.samanl33t.com/writings/0x0003-frida-on-qt6-part-1/
0
0
0
[RSS] Hack the Elephant One Bite at a Time: JPEG-Related Memory-Safety Bugs in PHP

https://swarm.ptsecurity.com/hack-the-elephant-one-bite-at-a-time-jpeg-related-memory-safety-bugs-in-php/
0
0
0
[RSS] HDD Firmware Hacking Part 1

https://icode4.coffee/?p=1465
0
0
3
[RSS] Exploiting Toshiba Qiomem.sys vulnerable driver

https://valium007.github.io/posts/toshiba-vuln/
0
0
0
repeated
hi everyone

given one #bitlocker #0day is already out there, here's my own bitlocker 0day, I added it to my repo listing bitlocker attacks.

Introducing "ram leak": https://github.com/Wack0/bitlocker-attacks#ram-leak

As we all know, the boot environment allows booting from a ramdisk. This involves loading a file from disk into RAM, as expected.

However, "file" and "disk" can be arbitrarily chosen, and "disk" being a BitLocker encrypted partition is a supported scenario. Using another trick (same one used with bitpixie earlier) it's possible to get the keys derived without going through the legacy integrity validation checks too if relevant.

You can see where this is going. It's possible to leak any file from a bitlocker encrypted OS partition into RAM as long as you can get the keys derived (ie, TPM-only scenario).

The catch is that booting into the NT kernel marks that memory area as free so it could get overwritten there, but there are other ways to dump the memory area, and a PoC is included with my preferred method (it's only a PoC so just displays a hexdump of the first sector of the file)

The video shows successful exploitation in my test VM, it has secure boot enabled (you can tell because VMware shows an efi shell option on the boot menu when secure boot is disabled).

#infosec #windows
0
22
0
repeated
repeated

Clownstrike share price basically tripled since the 2024 fuckup... There is no such thing as long term damage in cyber stocks LOL :PPPPPPPP

0
2
0
repeated
repeated

🐞 Linus Torvalds says AI-powered bug hunters have made Linux security mailing list ‘almost entirely unmanageable’

“So just to make it really clear: If you found a bug using AI tools, the chances are somebody else found it too. If you actually want to add value, read the documentation, create a patch too, and add some real value on *top* of what the AI did. Don't be the drive-by ‘send a random report with no real understanding’ kind of person. OK?”

https://www.theregister.com/security/2026/05/18/linus-torvalds-says-ai-powered-bug-hunters-have-made-linux-security-mailing-list-almost-entirely-unmanageable/5241633

0
5
0
repeated

ruby RubyGems suspends new Signups after Hundreds of Malicious Packages are Uploaded.

RubyGems, the standard package manager for the Ruby programming language, has temporarily paused account sign ups following what has been described as a "major malicious attack."

"We're dealing with a major malicious attack on Ruby Gems right now," Maciej Mensfeld, senior product manager for software supply chain security at Mend.io, said in a post on X. "Signups are paused for the time being. Hundreds of packages involved – mostly targeting us, but some carrying exploits."

https://x.com/maciejmensfeld/status/2054164602577940619

⁉️Visitors to RubyGems sign up page are now greeted with the message: "New account registration has been temporarily disabled."⁉️

https://rubygems.org/sign_up

0
3
0
repeated

so, umm, this is a 16 bytes intro

16 bytes

!!!!!!!!!!!!!!!!

https://www.youtube.com/watch?v=MvycyU-kLjg

1
8
0
repeated

Project Zero Bot

New Project Zero issue:

Adobe DNG SDK: heap corruption via negative pointer in dng_simple_image::Trim due to DefaultCropArea logic error

https://project-zero.issues.chromium.org/issues/479151242

CVE-2026-27259
0
2
0
repeated

Project Zero Bot

New Project Zero issue:

Adobe DNG SDK: inconsistency between kMaxColorPlanes and kMaxSamplesPerPixel leads to multiple memory corruption issues

https://project-zero.issues.chromium.org/issues/477557327

CVE-2026-27258
0
1
0
repeated

Project Zero Bot

New Project Zero issue:

Adobe DNG SDK: systemic out-of-bounds reads in rendering routines due to lack of NaN validation and missing index lower-bound checks

https://project-zero.issues.chromium.org/issues/480916830

CVE-2026-27260
0
1
0
To whom it may concern:

Would you please stop trying to log in to my G/MS accounts? Not too much to see there anyway...
2
0
2
repeated

Peter G. Neumann, renowned computer scientist, ARPANET/Internet pioneer and expert on technology risks, working at SRI International since 1971, has died at age 93. Peace. He has been my friend and colleague for over half a century. He will be greatly missed.

7
16
0
Show older